Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 07:59:24.185 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57980 10 6452 1 2025-10-20 08:00:15.937 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 08:00:15.975 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 08:00:15.949 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:00:16.055 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:00:16.138 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 08:00:24.591 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:46484 10 6452 1 2025-10-20 08:01:24.948 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:37612 10 6452 1 2025-10-20 08:02:25.330 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57750 10 6452 1 2025-10-20 08:03:25.730 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:38940 10 6452 1 2025-10-20 08:04:26.147 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51468 10 6452 1 2025-10-20 07:59:47.109 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 07:59:47.109 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 08:05:15.912 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:05:16.102 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:05:15.954 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 08:05:15.946 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 08:05:16.186 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 08:05:26.547 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55840 10 6452 1 2025-10-20 08:06:26.958 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38146 10 6452 1 2025-10-20 08:07:27.358 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50442 10 6452 1 2025-10-20 08:08:27.762 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48096 10 6452 1 2025-10-20 08:09:28.129 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43856 10 6452 1 2025-10-20 08:10:16.149 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 08:10:16.075 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 08:10:15.946 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 08:10:16.163 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:10:16.066 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:10:28.537 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52012 10 6452 1 2025-10-20 08:11:28.945 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60846 10 6452 1 2025-10-20 08:06:47.113 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 08:06:47.111 00:06:00.256 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 08:12:29.355 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40930 10 6452 1 2025-10-20 08:13:29.761 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48174 10 6452 1 2025-10-20 08:14:30.170 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47464 10 6452 1 2025-10-20 08:15:16.065 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 08:15:16.194 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 08:15:16.185 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:15:16.349 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:15:16.432 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 08:15:30.580 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41638 10 6452 1 2025-10-20 08:16:30.980 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60678 10 6452 1 2025-10-20 08:17:31.387 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47918 10 6452 1 2025-10-20 08:18:31.787 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58160 10 6452 1 2025-10-20 08:13:47.114 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 08:13:47.112 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 08:19:32.149 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49626 10 6452 1 2025-10-20 08:20:16.145 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 08:20:16.328 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 08:20:16.209 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:20:16.063 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:20:16.258 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 08:20:32.556 00:00:19.512 TCP 1.101.0.1:3000 -> 23.104.0.1:37068 10 6452 1 2025-10-20 08:21:42.125 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41554 10 6452 1 2025-10-20 08:22:42.529 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36624 10 6452 1 2025-10-20 08:23:42.893 00:00:16.532 TCP 1.101.0.1:3000 -> 23.104.0.1:43678 14 10479 1 2025-10-20 08:24:49.465 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48394 10 6452 1 2025-10-20 08:25:16.623 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 08:25:16.699 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 08:25:16.531 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 08:25:16.167 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:25:16.541 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:20:47.115 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 08:20:47.112 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 08:25:49.868 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43650 10 6452 1 2025-10-20 08:26:50.281 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48388 10 6452 1 2025-10-20 08:27:50.685 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58152 10 6452 1 2025-10-20 08:28:51.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48478 10 6452 1 2025-10-20 08:29:51.507 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48936 10 6452 1 2025-10-20 08:30:16.389 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 08:30:16.618 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 08:30:16.546 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:30:16.559 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:30:16.641 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 08:30:51.874 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39056 10 6452 1 2025-10-20 08:31:52.279 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48982 10 6452 1 2025-10-20 08:27:47.116 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 08:27:47.113 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 08:32:52.683 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58406 10 6452 1 2025-10-20 08:33:53.106 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59100 10 6452 1 2025-10-20 08:34:53.465 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55312 10 6452 1 2025-10-20 08:35:17.254 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:35:17.243 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 08:35:17.291 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 08:35:17.117 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:35:17.336 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 08:35:53.869 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41336 10 6452 1 2025-10-20 08:36:54.277 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51706 10 6452 1 2025-10-20 08:37:54.687 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58308 10 6452 1 2025-10-20 08:38:55.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41402 10 6452 1 2025-10-20 08:34:47.113 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 08:34:47.117 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 08:39:55.514 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38552 10 6452 1 2025-10-20 08:40:16.976 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 08:40:16.883 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 08:40:16.650 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:40:16.873 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:40:16.956 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 08:40:55.919 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55940 10 6452 1 2025-10-20 08:41:56.328 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57502 10 6452 1 2025-10-20 08:42:56.729 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:39320 10 6452 1 2025-10-20 08:43:57.145 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38254 10 6452 1 2025-10-20 08:44:57.505 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54464 10 6452 1 2025-10-20 08:45:16.797 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 08:45:16.843 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 08:45:16.545 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:45:16.719 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:45:16.803 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 08:45:57.871 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45590 10 6452 1 2025-10-20 08:41:47.115 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 08:41:47.118 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 08:46:58.278 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49154 10 6452 1 2025-10-20 08:47:58.687 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:42858 12 10375 1 2025-10-20 08:48:59.174 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34464 10 6452 1 2025-10-20 08:49:59.581 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44090 10 6452 1 2025-10-20 08:50:17.214 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 08:50:17.141 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 08:50:16.985 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:50:17.161 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:50:17.243 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 08:50:59.950 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33136 10 6452 1 2025-10-20 08:52:00.361 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57826 10 6452 1 2025-10-20 08:53:00.762 00:00:10.482 TCP 1.101.0.1:3000 -> 23.104.0.1:34228 10 6452 1 2025-10-20 08:48:47.119 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 08:48:47.117 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 08:54:01.273 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54386 10 6452 1 2025-10-20 08:55:01.634 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40860 10 6452 1 2025-10-20 08:55:16.984 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 08:55:16.901 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 08:55:16.816 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:55:17.179 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 08:55:17.262 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 08:56:02.035 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36958 10 6452 1 2025-10-20 08:57:02.439 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43288 10 6452 1 2025-10-20 08:58:02.846 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:36966 10 6452 1 Summary: total flows: 135, total bytes: 417514, total packets: 1000, avg bps: 946, avg pps: 0, avg bpp: 417 Time window: 2025-10-20 07:59:24 - 2025-10-20 08:58:13 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0040s User: 0.0008s Wall: 0.0024s flows/second: 55556.4 Runtime: 0.0025s